CVE-2013-5663
The App-ID cache feature in Palo Alto Networks PAN-OS before 4.0.14, 4.1.x before 4.1.11, and 5.0.x before 5.0.2 allows remote attackers to bypass intended security policies via crafted requests that trigger invalid caching, as demonstrated by incorrect identification of HTTP traffic as SIP traffic, aka Ref ID 47195.
- Affected products
- Pan-Os
- Paloaltonetworks Pan-os
- ≤ 4.0.8, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.5, 4.0.6, 4.0.7, 4.1.0, 4.1.1, 4.1.2, 4.1.3, 4.1.4, 4.1.5, 4.1.6, 4.1.7, 4.1.8, 4.1.8-h3, 4.1.9, 4.1.10, 5.0.0, 5.0.0-h1
- Fix
- Available
- CVSS 2.0
- 4.3 MEDIUM
- EPSS
- 2.8% (85th percentile)
- Weakness
- CWE-264
- NVD status
- Modified
- Published
- 2013-08-31
CVE-2013-5663 at NVD
No indexed exploits for CVE-2013-5663 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2013-5663 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.